We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
2 parents 7b5103d + 1440db8 commit ccc2587Copy full SHA for ccc2587
2 files changed
datasets/cisco_isovalent/cisco_isovalent.log
@@ -0,0 +1,3 @@
1
+version https://git-lfs.github.com/spec/v1
2
+oid sha256:a3b686ab456637b24d559663913862b9962c7a3ccbc0f64d8a53010f9a59ecb2
3
+size 15566
datasets/cisco_isovalent/cisco_isovalent.yml
@@ -0,0 +1,14 @@
+author: Bhavin Patel, Splunk
+id: 1fc537db-5e0b-4a2e-a768-27e08eff0c70
+date: '2025-08-15'
4
+description: |
5
+ Generated datasets for Cisco Isovalent Process Exec EventType. Contains simulations for the following detections:
6
+ * Cisco Isovalent - Detect Shell Execution
7
+ * Cisco Isovalent - Curl Execution With Insecure Flags
8
+environment: manual simulations in a K8s cluster running Tetragon
9
+mitre_technique: []
10
+datasets:
11
+- name: cisco_isovalent
12
+ path: /datasets/cisco_isovalent/cisco_isovalent.log
13
+ sourcetype: cisco:isovalent
14
+ source: cisco_isovalent
0 commit comments